Segmentation fault vulnerability exists in Gpac through 1.0.1 via the gf_odf_size_descriptor function in desc_private.c when using mp4box, which causes a denial of service.
Link | Tags |
---|---|
https://github.com/gpac/gpac/commit/f5a038e6893019ee471b6a57490cf7a495673816 | third party advisory patch |
https://github.com/gpac/gpac/issues/1889 | issue tracking exploit third party advisory |
https://www.debian.org/security/2023/dsa-5411 | vendor advisory |